
<!-- saved from url=(0103)http://www.elmajdal.net/win2k8/Setting_Up_an_Additional_Domain_Controller_With_Windows_Server_2008.aspx -->
<html xmlns:v="urn:schemas-microsoft-com:vml" xmlns:o="urn:schemas-microsoft-com:office:office"><head><meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
							</head><body background="./Setting Up an Additional Domain Controller With Windows Server 2008_files/bg_lines.gif" onload="MM_preloadImages(&#39;../images/nav_home_on.gif&#39;,&#39;../images/nav_about_on.gif&#39;,&#39;../images/nav_services_on.gif&#39;,&#39;../images/nav_contact_on.gif&#39;)"><a name="top"></a>
<meta http-equiv="Content-Language" content="en-us">

<title>Setting Up an Additional Domain Controller With Windows Server 2008</title>

<meta name="keywords" content="ISA Server,Forefront,isa 2004, isa 2006, TMG, threat management,gateway,UAG,windows server 2008,tarek,majdalani,web design, Web Development,e-commerce, software , network, networking,elmajdal,computer,engineer,lau,ieee">
<meta name="description" content="Tarek Majdalani Windows Server &amp; Edge Security Portal"><link rel="stylesheet" href="./Setting Up an Additional Domain Controller With Windows Server 2008_files/master.asp" type="text/css">

<style type="text/css">
<!--
.whattxt{
	FONT-WEIGHT: bold; COLOR: #505050; TEXT-DECORATION: none; font-size: 12pt;font-family: Arial, Helvetica, sans-serif;
}
.whatwe {  font-family: Arial, Helvetica, sans-serif; font-size: 10pt; font-weight: bold; color: #000000}
.ar9 {
	font-family: Arial, Helvetica, sans-serif;
	font-size: 10pt;
	line-height: 110%;
}
.ar10 {
	font-family: Arial, Helvetica, sans-serif;
	font-size: 10pt;
	font-weight: normal;
	color: #000000;
}
.ar110 {
	font-family: Arial, Helvetica, sans-serif;
	font-size: 10pt;
	line-height: 130%;
	font-weight: normal;
	color: #000000;
}

.CommonSidebarArea
{
	width: 192px;
	margin: 22px 0px 0px 0px;
	overflow: hidden;
}

.CommonSidebarHeader
{
	text-align: left;
	font-family: Tahoma, Arial, Helvetica;
	font-size: 100%;
	background-color: #CDDEEE;
	color: #4C7A9E;
	padding-left: 8px;
	margin: 0px;
	background-image: url('../images/sidebar-header.gif');
	background-position: left top;
	background-repeat: no-repeat;
	padding-right: 2px;
	padding-top: 2px;
	padding-bottom: 2px;
}

.CommonSidebarContent
{
	font-family: Tahoma, Arial, Helvetica;
	font-size: 80%;
	color: #000000;
	padding: 8px;
	padding-bottom: 5px;
	border-style: solid;
	border-width: 1px;
	border-color: #cccccc;
	background-color: #ffffff;
	width: 174px;
	overflow: hidden;
}


.CommonSidebar
{
	padding: 0px;
	margin-left: 10px;
	margin-right: 10px;
}

.CommonContentArea
{
	background-color: #ffffff;
	margin: 4px;
	padding: 0px 10px 10px 10px;
	border: solid;
	border-width: 1px;
	border-color: #ffffff;
}

.CommonContent
{
	padding: 0px 8px 8px 8px;
	font-family: Tahoma, Arial, Helvetica;
	font-size: 100%;
}

.CommonContent
{
	line-height: 20px;
}

.CommonSidebarContentItem
{
	margin-bottom: 5px;
	display: list-item;
	list-style-type: square;	
	margin-left: 16px;
	color: #4C7A9E;
}

.CommonListTitle
{
	padding: 4px;
	padding-left: 8px;
	background-color: #8CAEC9;
	border-style: solid;
	border-width: 1px;
	border-color: #888888;
	color: #ffffff;
	font-family: Tahoma, Arial, Helvetica;
	font-size: 90%;
	font-weight: bold;
	margin: 0px;
}

.ForumGroupImageAndNameHeader
{
	text-align: center;
}

.CommonListHeaderLeftMost
{
	text-align: center;
	padding: 4px;
	border-style: solid;
	border-width: 1px;
	border-color: #cccccc;
	background-color: #eeeeee;
	color: #666666;
	font-family: Tahoma, Arial, Helvetica;
	font-size: 80%;
	font-weight: bold;
}

.ForumGroupLastPostHeader
{
	text-align: center;
}

.CommonListHeader
{
	text-align: center;
	padding: 4px;
	border-style: solid;
	border-width: 1px;
	border-left-width: 0px;
	border-color: #cccccc;
	background-color: #eeeeee;
	color: #666666;
	font-family: Tahoma, Arial, Helvetica;
	font-size: 80%;
	font-weight: bold;
}

.ForumGroupTotalThreadsHeader
{
	text-align: center;
}

.ForumGroupTotalPostsHeader
{
	text-align: center;
}

.style60 {
	border-width: 1px;
}
.style62 {
	border: 1px solid #DBDBDB;
}
.style11 {
	direction: ltr;
	text-align: left;
}
.style31 {
	font-family: Arial;
	font-size: x-small;
}
.style14 {
	font-family: Arial;
}
.style64 {
	font-family: Arial;
	direction: ltr;
	font-size: x-small;
}
.style70 {
	font-size: 10pt;
	line-height: 130%;
	font-weight: normal;
	color: #000000;
}
.footer { font-family: 
Verdana, Arial, Helvetica, sans-serif; font-size: 8pt; font-weight: normal; color: #DBDBDB} 
 li.MsoNormal
	{margin-bottom:.0001pt;
	font-size:12.0pt;
	font-family:"Times New Roman";
	margin-left:0in; margin-right:0in; margin-top:0in
}
.style74 {
	font-size: x-small;
}
.style12 {
	text-decoration: none;
}

.style114 {
	color: #FF0000;
	font-size: 10pt;
}

h1 {
    font-weight: 600; /* Bolder in IE 6 & 7 */ 
    }

.style118 {
	font-size: 10pt;
	font-weight: bold;
}
.style119 {
	direction: ltr;
	font-size: 10pt;
	font-weight: bold;
	font-family: Arial;
	text-align: left;
}
.style120 {
	font-size: 10pt;
}
.style121 {
	font-family: Arial;
	font-size: 10pt;
	text-align: left;
}
.style122 {
	font-family: Arial;
	direction: ltr;
	font-size: 10pt;
}

*{-moz-box-sizing:border-box;-webkit-box-sizing:border-box;box-sizing:border-box;}
 
.style149 {
	direction: ltr;
	font-size: 10pt;
	font-weight: bold;
	text-align: left;
}
.style150 {
	font-weight: bold;
	direction: ltr;
	text-align: left;
}

.style151 {
	color: #0073B8;
}

.style132 {
	font-size: 10pt;
	font-weight: bold;
}

.style152 {
	text-align: right;
}

-->
</style>
<script language="JavaScript" type="text/JavaScript">
<!--
function MM_preloadImages() { //v3.0
  var d=document; if(d.images){ if(!d.MM_p) d.MM_p=new Array();
    var i,j=d.MM_p.length,a=MM_preloadImages.arguments; for(i=0; i<a.length; i++)
    if (a[i].indexOf("#")!=0){ d.MM_p[j]=new Image; d.MM_p[j++].src=a[i];}}
}

function MM_swapImgRestore() { //v3.0
  var i,x,a=document.MM_sr; for(i=0;a&&i<a.length&&(x=a[i])&&x.oSrc;i++) x.src=x.oSrc;
}

function MM_findObj(n, d) { //v4.01
  var p,i,x;  if(!d) d=document; if((p=n.indexOf("?"))>0&&parent.frames.length) {
    d=parent.frames[n.substring(p+1)].document; n=n.substring(0,p);}
  if(!(x=d[n])&&d.all) x=d.all[n]; for (i=0;!x&&i<d.forms.length;i++) x=d.forms[i][n];
  for(i=0;!x&&d.layers&&i<d.layers.length;i++) x=MM_findObj(n,d.layers[i].document);
  if(!x && d.getElementById) x=d.getElementById(n); return x;
}

function MM_swapImage() { //v3.0
  var i,j=0,x,a=MM_swapImage.arguments; document.MM_sr=new Array; for(i=0;i<(a.length-2);i+=3)
   if ((x=MM_findObj(a[i]))!=null){document.MM_sr[j++]=x; if(!x.oSrc) x.oSrc=x.src; x.src=a[i+2];}
}
//-->
</script>
<script language="JavaScript1.2" src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/master.js" type="text/javascript"></script>





<br>
<div align="center">
  <span class="style14"><span class="style74">
  <script language="JavaScript1.2" src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/HM_Loader3.js" type="text/javascript"></script><script language="JavaScript1.2" src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/HM_Arrays3.js" type="text/javascript"></script><script language="JavaScript1.2" src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/HM_ScriptDOM.js" type="text/javascript"></script>
  </span></span>
  <table cellspacing="0" cellpadding="1" border="0" id="outertable">
    <tbody>
      <tr> 
        <td valign="top" bgcolor="#000000"> 
		<table cellspacing="0" cellpadding="0" bgcolor="#ffffff" border="0" style="width: 937px">
            <tbody>
              <tr> 
                <td valign="top" bgcolor="#ffffff"> <table width="100%" border="0" cellspacing="0" cellpadding="0">
                    <tbody><tr> 
                <td valign="top" bgcolor="#ffffff"> <table width="100%" border="0" cellspacing="0" cellpadding="0">
                    <tbody><tr> 
                      <td width="48%" rowspan="2" class="style31">
                      <img border="0" src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/logo.PNG" width="191" height="66"></td>

                    </tr>
                    <tr> 
                      <td width="52%" height="43" align="right" valign="top" class="style31">
                      &nbsp;</td>
                      <td width="52%" align="right" class="style31"><img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/complete_header.gif" width="328" height="41"></td>
                    </tr>
                  </tbody></table></td>
              </tr>
              <tr bgcolor="#000000"> 
                <td class="style31"><img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/1x1.gif" width="1" height="1"></td>
              </tr>


              <tr bgcolor="#FFFFFF"> 
                <td height="40">
				
				
				<iframe src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/Top_Frame.htm" frameborder="0" scrolling="no" style="width: 100%; height: 124px;"></iframe><br>
				
				
				<table id="CommonBodyTable" cellspacing="0" cellpadding="0" width="100%" border="0">
					<tbody><tr>
						<td id="CommonLeftColumn" valign="top" style="width: 221px">
						
						
						<iframe src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/Articles_Left_Frame.htm" height="388px" frameborder="0" scrolling="no" width="210px"></iframe>
						
						</td>
						<td id="CommonBodyColumn" valign="top" class="style60" style="width: 500px">
						<span class="style31">
						<br>
                          <br>
                          <br>
                          </span>
                          <table style="TABLE-LAYOUT: fixed; width: 99%; height: 244px;" cellspacing="0" cellpadding="0" border="0">
							<tbody><tr>
								<td class="style62">
								<div class="CommonContentArea">
									<div class="CommonContent">
										<div id="ctl00_ctl00_bcr_welcomeContentPart">
						<table border="0" cellspacing="0" cellpadding="0" style="width: 449px; height: 133px;">
                            <tbody><tr>
                        <td valign="top" bgcolor="#FFFFFF" colspan="3" class="style64">
                          <span id="Header1_lblTitle">
                          <font face="Arial" color="#0073b8">
							<span id="_ctl0_MainContent_PostFlatView0">
							<span id="_ctl0_MainContent_PostFlatView1" class="style118">
							<span id="Header1_lblTitle0" class="style145">

                          <span id="Header1_lblTitle1" class="style132">

                          Setting Up an 
							Additional Domain Controller With Windows Server 
							2008</span></span></span></span></font></span></td>
                        	</tr>
                            <tr>
                        <td bgcolor="#FFFFFF" width="89" height="39" class="style121">
                          <p class="style150" style="line-height: normal">
							<font face="Arial" size="2"><span class="style120"><br>
							Published</span></font></p>
							</td>
                        <td bgcolor="#FFFFFF" width="13" height="39" class="style11">
                          <font face="Arial">
                          <span class="style120">
                          <br>
							</span><span class="style118">:</span></font></td>
                        <td bgcolor="#FFFFFF" height="39" class="style150" style="width: 208px">
							<font face="Arial" size="2"><span class="style120"><br>
							February 17, 2008</span></font></td>
                        	</tr>
                          	<tr>
                        <td bgcolor="#FFFFFF" width="89" height="31" class="style119">
							<font face="Arial">Last Updated </font></td>
                        <td bgcolor="#FFFFFF" width="13" height="31" class="style149">
                          <font face="Arial">:</font></td>
                        <td bgcolor="#FFFFFF" height="31" class="style149" style="width: 208px">
							<font face="Arial">February 17, 2008</font></td>
                        	</tr>
							<tr>
                        <td valign="top" bgcolor="#FFFFFF" width="89" class="style64">
                          &nbsp;</td>
                        <td valign="top" bgcolor="#FFFFFF" width="13" class="style64">
                          &nbsp;</td>
                        <td valign="top" bgcolor="#FFFFFF" class="style64" style="width: 208px">
                          &nbsp;</td>
                        	</tr>
                          	<tr>
                        <td valign="top" bgcolor="#FFFFFF" colspan="3" class="style122">
                          <strong>Introduction</strong></td>
                        	</tr>
							</tbody></table>
                          <span class="style70">
                         <br>
						<span class="style14">							<font size="2">In a </font> 
							<a href="http://www.elmajdal.net/win2k8/Setting_Up_Your_First_Domain_Controller_With_Windows_Server_2008.aspx" class="style12">
							<strong><span class="style151">previous article</span></strong></a><font size="2">, 
							we have set up our first Active Directory Domain 
							Services (AD DS) using Windows Server 2008. In this 
							article, we are going to see how to set up an 
							Additional Domain Controller for AD DS replication.</font></span></span>

</div>
									</div>
								</div>
								</td>
							</tr>
						</tbody></table>
						</td>
						<td id="CommonRightColumn" valign="top">

						<iframe src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/Win2k8_Articles_Right_Frame.htm" height="388px" frameborder="0" scrolling="no" width="210px"></iframe>
						</td>
					</tr>
				</tbody></table>
				<table id="CommonBodyTable0" cellspacing="0" cellpadding="0" width="100%" border="0">
					<tbody><tr>
						<td id="CommonBodyColumn0" valign="top" width="100%">
						<span class="style31">
						<br>
						</span>
						<table style="TABLE-LAYOUT: fixed; width: 99%;" cellspacing="0" cellpadding="0" border="0">
							<tbody><tr>
								<td class="style62">
								<div class="CommonContentArea">
									<div class="CommonContent">
										<div id="ctl00_ctl00_bcr_welcomeContentPart1" class="style14">
                  <span class="style68">
					<div class="intro">
						
						<p class="style120">To set up an Additional Domain Controller, I will use 
						the dcpromo.exe command.</p>
						<ol>
							<li><font size="2">To use the command, click on 
							<strong>Start
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/Win2k8StartButton.jpg" width="20" height="20"></strong>&nbsp; 
						&gt; <strong>Run </strong>&gt; and then write <strong>dcpromo</strong> 
						&gt; Click </font> <strong><font size="2">OK<br>
							<br>
							</font>
							<span class="style132">
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/dcpromo_run_command.jpg" width="417" height="222"><br>
							<br>
							</span></strong></li>
							<li class="style68"><span class="style120">The system will start checking if Active Directory 
						Domain Services ( AD DS) binaries are installed, then 
						will start installing them. The binaries could be 
						installed if you had run the dcpromo command previously 
						and then canceled the operation 
						after the binaries were installed.</span><span class="style132"><br>
							<strong><br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/dcpromo_run_command_2.jpg" width="281" height="154">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/dcpromo_run_command_3.jpg" width="281" height="157"><br>
							<br>
							</strong></span></li>
							<li class="style68"><span class="style134">
							<font size="2">The Active 
							<strong>Directory Domain 
						Services Installation Wizard</strong> will start, either 
						enable the checkbox beside <strong>Use Advanced mode 
						installation </strong>and Click <strong>Next ,</strong> 
						or keep it unselected and click on </font> </span><strong>
							<span class="style134"><font size="2">Next</font></span><span class="style132"><br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/welcome_ad_ds_installation.jpg" width="503" height="476"><br>
							</span></strong><span class="style68">
							<p class="style120">The following table lists the 
						additional wizard pages that appear for each deployment 
						configuration when you select the <b>Use advanced mode 
						installation</b> check box. </p>
							</span><span class="style71"><strong>
							<table border="1" cellspacing="0" cellpadding="0" style="mso-table-layout-alt: fixed; mso-border-alt: solid windowtext .5pt; mso-padding-alt: 0in .5pt 0in .5pt; mso-border-insideh: .5pt solid windowtext; mso-border-insidev: .5pt solid windowtext" class="style72">
								<tbody><tr style="mso-yfti-irow: 0; mso-yfti-firstrow: yes">
									<td style="width: 263pt; border: solid windowtext 1.0pt; mso-border-alt: solid windowtext .5pt; padding: 0in .5pt 0in .5pt; height: 34px;" class="style73">
									<p class="style118" align="center">Deployment configuration 
									<o:p></o:p>
									</p>
									</td>
									<td style="border-right: 1.0pt solid windowtext; border-top: 1.0pt solid windowtext; border-bottom: 1.0pt solid windowtext; width: 332pt; border-left: none; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .5pt 0in .5pt; height: 34px;">
									<p class="style118" align="center">Advanced mode installation wizard pages 
									<o:p></o:p>
									</p>
									</td>
								</tr>
								<tr style="mso-yfti-irow: 1">
									<td style="border-left: 1.0pt solid windowtext; border-right: 1.0pt solid windowtext; border-bottom: 1.0pt solid windowtext; width: 263pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .5pt 0in .5pt; height: 38px;" class="style31">
									<p class="style120">New forest<o:p></o:p></p>
									</td>
									<td style="width: 332pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .5pt 0in .5pt; height: 38px;">
									<p class="MsoNormal"><span class="style118">Domain NetBIOS name</span><span style="font-size:12.0pt;font-family:&quot;Times New Roman&quot;,&quot;serif&quot;">
									<o:p></o:p>
									</span></p>
									</td>
								</tr>
								<tr style="mso-yfti-irow:2">
									<td style="border-left: 1.0pt solid windowtext; border-right: 1.0pt solid windowtext; border-bottom: 1.0pt solid windowtext; width: 263pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .5pt 0in .5pt" class="style31">
									<p class="style120">New domain in an existing forest<o:p></o:p></p>
									</td>
									<td style="width: 332pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .5pt 0in .5pt">
									<p class="style131"><font size="2">On the 
									</font> <b><font size="2">Choose a Deployment Configuration</font></b><font size="2"> 
								page, the option to create a new domain tree 
								appears only in advanced mode installation. 
									</font> 
									<o:p></o:p>
									</p>
									<p class="MsoNormal"><span class="style118">Domain NetBIOS name</span><span style="font-size:12.0pt;font-family:&quot;Times New Roman&quot;,&quot;serif&quot;">
									<o:p></o:p>
									</span></p>
									<p class="MsoNormal"><span class="style118">Source Domain Controller</span><span style="font-size:12.0pt;font-family:&quot;Times New Roman&quot;,&quot;serif&quot;">
									<o:p></o:p>
									</span></p>
									</td>
								</tr>
								<tr style="mso-yfti-irow:3">
									<td style="border-left: 1.0pt solid windowtext; border-right: 1.0pt solid windowtext; border-bottom: 1.0pt solid windowtext; width: 263pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .5pt 0in .5pt" class="style31">
									<p class="style120">Additional domain controller in an existing 
								domain<o:p></o:p></p>
									</td>
									<td style="width: 332pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .5pt 0in .5pt">
									<p class="MsoNormal"><span class="style118">Install from Media</span><span style="font-size:12.0pt;font-family:&quot;Times New Roman&quot;,&quot;serif&quot;">
									<o:p></o:p>
									</span></p>
									<p class="MsoNormal"><span class="style118">Source Domain Controller</span><span style="font-size:12.0pt;font-family:&quot;Times New Roman&quot;,&quot;serif&quot;">
									<o:p></o:p>
									</span></p>
									<p class="style120"><b>Specify Password Replication Policy</b> (for RODC 
								installation only)<o:p></o:p></p>
									</td>
								</tr>
								<tr style="mso-yfti-irow: 4">
									<td style="border-left: 1.0pt solid windowtext; border-right: 1.0pt solid windowtext; border-bottom: 1.0pt solid windowtext; width: 263pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .5pt 0in .5pt; height: 57px;" class="style31">
									<p class="style120">Create an account for a read-only domain 
								controller (RODC) installation 
									<o:p></o:p>
									</p>
									</td>
									<td style="width: 332pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .5pt 0in .5pt; height: 57px;">
									<p class="MsoNormal"><span class="style118">Specify Password Replication Policy</span><span style="font-size:12.0pt;
  font-family:&quot;Times New Roman&quot;,&quot;serif&quot;">
									<o:p></o:p>
									</span></p>
									</td>
								</tr>
								<tr style="mso-yfti-irow:5;mso-yfti-lastrow:yes">
									<td style="border-left: 1.0pt solid windowtext; border-right: 1.0pt solid windowtext; border-bottom: 1.0pt solid windowtext; width: 263pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .5pt 0in .5pt" class="style31">
									<p class="style120">Attach a server to an account for an RODC 
								installation<o:p></o:p></p>
									</td>
									<td style="width: 332pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .5pt 0in .5pt">
									<p class="MsoNormal"><span class="style118">Install from Media</span><span style="font-size:12.0pt;font-family:&quot;Times New Roman&quot;,&quot;serif&quot;">
									<o:p></o:p>
									</span></p>
									<p class="MsoNormal"><span class="style118">Source Domain Controller</span><span style="font-size:12.0pt;font-family:&quot;Times New Roman&quot;,&quot;serif&quot;">
									<o:p></o:p>
									</span></p>
									</td>
								</tr>
							</tbody></table>
							</strong></span><font size="2"><br>
							</font>
							</li>
							<li class="style68"><font size="2">The <strong>Operating System Compatibility</strong> 
						page will be displayed, take a moment to read it and 
						click <strong>Next</strong><br>
							<br>
							</font>
							<span class="style70"><strong>
							<span class="style132">
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/ad_ds_Operating_system_compatibility.jpg" width="503" height="476"><br>
							<br>
							</span></strong></span></li>
							<li class="style68"><font size="2">On the <strong>Choose a 
							Deployment Configuration</strong> page,
							</font>
							<span class="style120">click 
										</span><span class="style132">Existing forest</span><span class="style120">, click 
										</span><span class="style132">Add a 
										domain controller to an existing domain</span><span class="style120">, 
										and then click </span>
							<span class="style132">Next</span><span class="style68"><font size="2">.</font></span><font size="2"><span class="style134"><br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/Existing_Forest.jpg" width="503" height="476"><br>
							<br>
							</span></font></li><font size="2">
							</font><li class="style68"><font size="2"></font><span class="style134">
							<font size="2">On the 
							</font> 
							</span><span class="style132">Network Credentials</span><span class="style120"> 
										page, type your domain name, my domain name is elmajdal.net 
							( was set in the 
							</span><span class="style68"> 
							<span class="ar110">
							<span class="style65"> 
							<font face="Arial" size="2" class="style68"> 
							<a href="http://www.elmajdal.net/win2k8/Setting_Up_Your_First_Domain_Controller_With_Windows_Server_2008.aspx" class="style12">
							<strong><span class="style120">previous article</span></strong></a><font size="2"> 
							)</font></font></span></span></span><span class="style120"> , so I will type elmajdal.net. <br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/Network_Credentials_1.jpg" width="503" height="476"><br>
							<br>
							</span></li>
							<li class="style68"><font size="2">To set </font> 
							<span class="style120">up 
							an Additional Domain Controller, you will need an 
							account that must be either a member of the 
							Enterprise Admins group or the Domain Admins group. We have two options:</span></li>
						</ol>
						<ul>
							<li class="style120">My Current logged on credentials ( DomainName\Username or 
							MachineName\Username)</li>
							<li><font size="2">Alternate credentials<br>
							<br>
							</font></li><font size="2">
							</font><li><font size="2">If you have previously joined this server to the 
							domain and you are currently logged in to it with an 
							</font> 
							<span class="style120">Enterprise Admin/</span><font size="2">Domain 
							Admin user, then you can use the first option 
							(My current logged on credentials)&nbsp;. As you can see 
							this option is grayed here, and the reason for this 
							is below it. It is because I'm currently logged in 
							with a local user, the machine is not a domain 
							member. I'm left out with the second option:
							</font>
							<span class="style68"><span class="style132">Alternate credentials</span></span><font size="2"><br>
							</font>
							</li>
						</ul>
						<ol start="8">
							<li class="style68"><font size="2">To enter the
							</font>
							<span class="style132">Alternate credentials</span><span class="style120">, click
							</span><span class="style132">Set</span><span class="style120">. In the 
										</span><span class="style132">Windows 
										Security</span><span class="style120"> dialog box, 
							enter the user name and password for an account 
										that must be either a member of the 
							Enterprise Admins group or the Domain Admins group &gt; 
							then click
										</span><span class="style132">Next</span><span class="style68"><font size="2">.</font></span><font size="2"><span class="style134"><br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/Network_Credentials_2.jpg" width="429" height="230"><br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/Network_Credentials_3.jpg" width="503" height="476"><br>
							<br>
							</span><span class="style68"><span class="style134">If you have entered a wrong username/password , you 
							will receive the following error message<br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/Network_Credentials_4.jpg" width="401" height="166"><br>
							<br>
							</span>
							</span></font></li><font size="2">
							</font><li><font size="2"></font><span class="style134"><font size="2">On the 
										</font> 
										</span><span class="style68"> 
										<span class="style132">Select a Domain</span></span><span class="style120"> page, 
										select the domain of the Additional Domain 
										Controller, and then click
							</span><span class="style68">
							<span class="style132">Next</span><span class="style134"><font size="2">, as I already have 
							only one domain, then it will be selected by 
							default.<br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/Select_domain.jpg" width="503" height="476"><br>
							<br>
							</font>
							</span>
							</span><font size="2"></font></li><font size="2">
							</font><li><font size="2"></font><span class="style134"><font size="2">On the 
							</font> 
							</span><span class="style68"> 
							<span class="style132">Select a Site</span></span><span class="style120"> page, 
							either enable the checkbox beside <strong>Use the 
							site that corresponds to the IP address of this 
							computer</strong>, this will install the domain 
							controller in the site that corresponds to its IP 
							address, or select a site from the list and then 
							click 
							</span><span class="style68"> 
							<span class="style132">Next. </span>
							<span class="style134"><font size="2">If you only 
							have one domain controller and one site, then you 
							will have the first option grayed and the site will 
							be selected by default as shown in the following image<br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/select_site.jpg" width="503" height="476"><br>
							<br>
							</font>
							</span>
							</span><font size="2"></font></li><font size="2">
							</font><li><font size="2"></font><span class="style134">
							<font size="2">
							</font><p><font size="2">On the 
							</font> 
							<span class="style68">
							<span class="style132">Additional Domain 
										Controller Options</span></span><span class="style134"><font size="2"> page, By 
							default, the DNS Server and Global Catalog 
							checkboxes are selected. You can also select your 
							additional domain controller to be a Read-only 
							Domain Controller (RODC) by selecting the checkbox 
							beside it.<br>
							<br>
							My primary domain controller is a DNS Server is 
							well, and this can be verified by reading the 
							additional information written in the below image, 
							that there is currently 1 DNS server that is 
							registered as an authoritative name server for this 
							domain. I do want my Additional DC to be a DNS 
							server and a Global catalog, so I will keep the 
							checkboxes selected. Click <strong>Next</strong><br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/AD_Options.jpg" width="503" height="476"><br>
							</font></span></p><font size="2">
							</font>
							</span><font size="2"></font></li><font size="2">
							</font><li><font size="2">
							</font><p><font size="2"></font><span class="style134"><font size="2">If you select the option to 
							install DNS server in the previous step, then you 
							will receive a message that indicates a DNS 
							delegation for the DNS server could not be created 
							and that you should manually create a DNS delegation 
							to the DNS server to ensure reliable name 
							resolution. If you are installing an additional 
							domain controller in either the forest root domain 
							(or a tree root domain) , you do not need to create 
							the DNS delegation. In this case, you can safely 
							ignore the message and click 
							</font> 
							</span><span class="style68">
							<span class="style132">Yes</span><font size="2">.</font></span><font size="2"><span class="style134"><br>
							<span class="style68">
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/DNS_Delegation.jpg" width="416" height="204"><br>
							</span></span></font></p><font size="2">
							
							</font></li><font size="2">
							</font><li><font size="2">
							</font><p><font size="2"></font><span class="style134"><font size="2">In the
							</font>
							</span><span class="style68">
							<span class="style132">Install from Media</span></span><span class="style120"> page 
							( will be displayed if you have selected
							</span><span class="style68">
							<span class="style132">Use advanced mode 
										installation</span><span class="style134"><font size="2"> on the Welcome page, 
							if you didn't select it, then skip to step # 15), 
							you can choose to either replicate data over the 
							network from an existing domain controller, or 
							specify the location of installation media to be 
							used to create the domain controller and configure 
							AD&nbsp;DS. I want to replicate data over the 
							network, so I will choose the first option &gt; click
							<strong>Next<br>
							</strong>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/install_from_media.jpg" width="503" height="476"><br>
							</font></span></span></p><font size="2">
							</font>
							
							<font size="2"></font></li><font size="2">
							</font><li class="style68"><font size="2">
							</font><p class="style134"><font size="2">On the <b>Source Domain 
							Controller</b> page of the Active Directory Domain 
							Services Installation Wizard, you can select which 
							domain controller will be used as a source for data 
							that must be replicated during installation, or you 
							can have the wizard select which domain controller 
							will be used as the source for this data. You have 
							two options : </font> </p>
							</li>
						</ol>
						<span class="style68">
						<ul>
							<li>
							<p class="style132">Let the 
							wizard choose an appropriate domain controller</p>
							</li>
							<li>
							<p class="style68"><span class="style132">Use this specific domain 
										controller<br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/Select_dc.jpg" width="503" height="476"></span><font size="2"><br>
							<br>
							If you want to choose from the list, any domain 
							controller can be the installation partner. However, 
							the following restrictions apply to the domain 
							controllers that can be used as an installation 
							partner in other situations:</font></p>
							
						<span class="style120">
							<ul>
								<li>A read-only domain controller (RODC) can 
								never be an installation partner. </li>
								<li>If you are installing an RODC, only a 
								writable domain controller that runs Windows 
								Server&nbsp;2008 can be an installation partner. </li>
								<li>If you are installing an additional domain 
								controller for an existing domain, only a domain 
								controller for that domain can be an 
								installation partner.</li>
							</ul>
							</span></li>
						</ul>
						<ol start="15">
							<li>Now you will have to specify the location where the domain 
						controller database, log files and SYSVOL are stored on 
						the server.<br>
						The database stores information about the users, 
						computers and other objects on the network. the log 
						files record activities that are related to AD DS, such 
						information about an object being updated. SYSVOL stores 
						Group Policy objects and scripts. By default, SYSVOL is 
						part of the operating system files in the Windows 
						directory<br>
							<br>
						Either type or browse to the volume and folder where you 
						want to store each, or accept the defaults and click on
							<strong>Next</strong><span class="style132"><br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/sysvol.jpg" width="503" height="476"><br>
							<br>
							Note :
							</span><span class="style120">Windows Server Backup backs up the 
										directory service by volume. For backup 
										and recovery efficiency, store these 
										files on separate volumes that do not 
										contain applications or other 
										nondirectory files.</span><span class="style132"><br>
							</span><font size="2"></font></li><font size="2">
							<br>
							
							</font>
							
							<li><font size="2">In the
                  			<strong>Directory Services Restore Mode Administrator 
						Password</strong> (<strong>DSRM</strong>) page, write 
						a password and confirm it. This password is used when 
						the domain controller is started in <strong>Directory 
						Services Restore Mode</strong>, which might be because 
							Active Directory Domain Services is not running, or
							</font>
							<span class="style120">for tasks that must be performed offline.</span><font size="2"><br>
							<br>
							</font>
							<span class="style132">
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/DS_restore_mode_admin_password.jpg" width="503" height="476"></span><font size="2"><br>
							<br>
							</font>
							<span class="style120">Make sure the password meet the password 
						complexity requirements of the password policy, that is 
						a password that contains a combination of uppercase and 
						lowercase letters, numbers, and symbols. else you will 
						receive the following message&nbsp; :</span><span class="style132"><br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/DS_restore_mode_admin_password_2.jpg" width="414" height="165"><br>
							<br>
							</span><font size="2"></font></li><font size="2">

							</font>

							
							<li>

							<span class="style134"><strong><font size="2">Summary</font></strong><font size="2"> page will be displayed showing you all the 
						setting that you have set . It gives you the option to 
						export the setting you have setup into an answer file 
						for use to automate subsequent AD DS operations, if you wish to 
						have such file, click on the <strong>Export settings
							</strong>button and save the file. Then click 
							<strong>Next</strong> to begin AD DS installation<br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/summary_page.jpg" width="503" height="476"><br>
							<br>
							</font>
							</span><font size="2"></font></li><font size="2">

							</font>

							
							<li>

							<span class="style134"><strong><font size="2">Active Directory Domain Services</font></strong><font size="2"> 
						installation 
						will be completed, click <strong>Finish, </strong>then 
						click on <strong>Restart Now</strong> to restart your server for the 
						changes to take effect.<br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/Additional_dc_completed.jpg" width="503" height="476"><br>
							<br>
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/restart_now.jpg" width="360" height="140">
							<br>
							<br>
							</font>
							</span><font size="2"></font></li><font size="2">

							</font>

							
						</ol>
						<ul>
							<li><font size="2">Open </font> <span class="style134"><strong>
							<font size="2">Active 
							Directory Users &amp; Computers</font></strong><font size="2">, and then 
							click on the <strong>Domain Controllers </strong>
							Organizational Unit, and you will see your 
							Additional Domain Controller along with your Primary 
							Domain Controller.</font></span><strong><font size="2"><span class="style134"><br>
							<br>
							</span> </font> <span class="style68">
							<font size="2">
							<img src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/both_DCs.jpg" width="664" height="267"><br>
							</font>
							<br>
							</span>
							</strong></li>
						</ul>
						<p>

						&nbsp;</p>
						<p>

						<strong><font size="2">Summary<br>
						<br>
						</font>
						</strong><font size="2">Additional domain controllers 
						improve the performance of authentication requests and 
						global catalog server lookups. They also help 
						Active&nbsp;Directory Domain Services (AD&nbsp;DS) overcome 
						hardware, software, or administrator errors. When you 
						add a domain controller, information is replicated over 
						the network.</font></p>
						<p class="style120">

						<strong>Related Articles</strong></p>
						<p><strong> 
									<span id="Header1_lblTitle23">
									<font color="#000000" face="Arial">
									<a class="style12" href="http://www.elmajdal.net/win2k8/Setting_Up_Your_First_Domain_Controller_With_Windows_Server_2008.aspx">
									<span class="style151"><font size="2">Setting Up Your First Domain Controller With Windows Server 2008</font></span></a></font></span></strong><font size="2"></font></p><font size="2">
						</font></span><font size="2">
						</font><p class="style112"><font size="2"></font><strong>
									<span class="style14">
									<a href="http://www.elmajdal.net/win2k8/Unattended_Installation_of_Active_Directory_Domain_Services.aspx" class="style12">
									<span class="style151"><font size="2">Unattended Installation of Active Directory Domain Services</font></span></a></span></strong></p>
						<p class="style152"><strong>
						<a href="http://www.elmajdal.net/win2k8/Setting_Up_an_Additional_Domain_Controller_With_Windows_Server_2008.aspx#top" class="style12">
						<span class="style114">Back to top</span></a></strong></p>
						</div>
										</span></div>
									</div>
								</div>
								</td>
							</tr>
							</tbody></table>

						</td>
					</tr>
				</tbody></table>
				</td>

              </tr>
                  </tbody></table>
				</td>
              </tr>
              <tr> 
                <td width="180" valign="top" class="style31">&nbsp;</td>
              </tr>
              <tr> 
                <td>
                
                <iframe src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/Footer_Frame.htm" height="108px" frameborder="0" scrolling="no" style="width: 100%"></iframe>
                
                </td>
              </tr>
            </tbody>
          </table>
    </td></tr></tbody>
  </table>
</div>
<script type="text/javascript">
var gaJsHost = (("https:" == document.location.protocol) ? "https://ssl." : "http://www.");
document.write(unescape("%3Cscript src='" + gaJsHost + "google-analytics.com/ga.js' type='text/javascript'%3E%3C/script%3E"));
</script><script src="./Setting Up an Additional Domain Controller With Windows Server 2008_files/ga.js" type="text/javascript"></script>
<script type="text/javascript">
var pageTracker = _gat._getTracker("UA-4548948-1");
pageTracker._initData();
pageTracker._trackPageview();
</script>


</body></html>